
WPB Circliful Security & Risk Analysis
wordpress.org/plugins/wpb-circlifulThis plugin will add a responsive Circliful. Very easy to use, just put a shortcode.
Is WPB Circliful Safe to Use in 2026?
Generally Safe
Score 85/100WPB Circliful has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "wpb-circliful" v1.0 plugin exhibits a strong security posture based on the provided static analysis. The code analysis reveals no instances of dangerous functions, raw SQL queries, unescaped output, or file operations. Furthermore, there are no external HTTP requests, which mitigates risks associated with remote code execution or data exfiltration. The plugin's entry points, primarily a single shortcode, are not immediately flagged for missing authentication or capability checks, indicating a potentially well-secured interface. The absence of any recorded vulnerabilities, including CVEs, in its history further reinforces this positive assessment, suggesting a history of stable and secure development.
While the static analysis paints a promising picture, the absence of taint analysis results (0 flows analyzed) means that potential vulnerabilities arising from complex data sanitization or insecure handling of user-supplied data may not have been detected. Similarly, the lack of explicit nonce and capability checks mentioned, while not necessarily a direct concern if the shortcode itself doesn't handle sensitive data or actions, leaves room for potential issues if its functionality evolves or is used in unexpected contexts. The limited attack surface is a positive, but the lack of granular security checks on the single entry point is a minor point of attention.
In conclusion, "wpb-circliful" v1.0 appears to be a secure plugin with good coding practices evident in its current state. The absence of known vulnerabilities and the clean static analysis are significant strengths. However, the lack of comprehensive taint analysis and the potential for unspecified security checks on its shortcode mean that continued vigilance and thorough testing, especially with future updates, are advisable. The plugin demonstrates a good foundational security but could benefit from explicit checks on its entry points to ensure robustness.
Key Concerns
- No nonce checks
- No capability checks
WPB Circliful Security Vulnerabilities
WPB Circliful Release Timeline
WPB Circliful Code Analysis
WPB Circliful Attack Surface
Shortcodes 1
WordPress Hooks 8
Maintenance & Trust
WPB Circliful Maintenance & Trust
Maintenance Signals
Community Trust
WPB Circliful Alternatives
UpdraftPlus: WP Backup & Migration Plugin
updraftplus
Backup, restore or migrate your WordPress website to another host or domain. Schedule backups or run manually. Migrate in minutes.
Better Search Replace
better-search-replace
A simple plugin to update URLs or other text in a database.
Duplicator – Backups & Migration Plugin – Cloud Backups, Scheduled Backups, & More
duplicator
The best WordPress backup and migration plugin. Quickly and easily backup ,migrate, copy, move, or clone your site from one location to another.
Backuply – Backup, Restore, Migrate and Clone
backuply
Backup, restores, and migration with Backuply are fairly simple with a wide range of storage options from Local Backups, FTP to cloud options like AWS …
Database Addon for Contact Form 7 – CFDB7
contact-form-cfdb7
Save and manage Contact Form 7 messages. Never lose important data. It is a lightweight contact form 7 database plugin.
WPB Circliful Developer Profile
26 plugins · 39K total installs
How We Detect WPB Circliful
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/wpb-circliful/css/jquery.circliful.css/wp-content/plugins/wpb-circliful/css/font-awesome.min.css/wp-content/plugins/wpb-circliful/css/main.css/wp-content/plugins/wpb-circliful/js/jquery.circliful.min.jswpb-circliful/css/jquery.circliful.css?ver=wpb-circliful/css/font-awesome.min.css?ver=wpb-circliful/css/main.css?ver=wpb-circliful/js/jquery.circliful.min.js?ver=HTML / DOM Fingerprints
cir_areacir_singledata-dimensiondata-textdata-infodata-widthdata-fontsizedata-percent+3 morejQuery<div class="cir_area"><div class="cir_single"><div id="myStat"